Type Remote Gateway Mode Phase 1 Proposal Authentication DescriptionIPv4 IKEv2 WAN 10.0.0.1 AES (128 bits) + AESXCBC + DH Group 19 (256 bit elliptic curve) Mutual PSK 2 -> 1
Type Local Subnet Remote Subnet Encryption Protocols Authenticity Protocols PFSESP IPv4 tunnel LAN 192.168.56.0/24 AES (auto), Blowfish (auto), 3DES, CAST128 AES-XCBC off
Enabled Bandwidth Metric Mask Description[X] 11000 kbit/s - pipe-up
Enabled Pipe Weight Description[X] pipe-up 100 queue-up
# Interface Protocol Source Destination Target Description1 IPsec ip 192.168.57.0/24 192.168.56.0/24 queue-up rule-up
ROUTE ADD 192.168.57.2 MASK 255.255.255.255 192.168.56.2
OPNsense2 # ipfw -a list[...]60000 0 0 return ip from any to any60001 1207 1476628 queue 10000 ip from 192.168.57.0/24 to 192.168.56.0/24 via enc0 // enc0: queue-up65533 4798 1861553 allow ip from any to any65534 0 0 deny ip from any to any65535 0 0 allow ip from any to any
The capture file appears to be damaged or corrupted.The file has 679044193-byte packet, bigger than the maximum of 262144.
root@OPNsense2:~ # ipfw pipe show10000: 11.400 Mbit/s 0 ms burst 0q141072 50 sl. 0 flows (1 buckets) sched 75536 weight 0 lmax 0 pri 0 droptail sched 75536 type FIFO flags 0x0 0 buckets 0 active
root@OPNsense2:~ # iperf3 -c 192.168.56.1Connecting to host 192.168.56.1, port 5201[ 5] local 192.168.57.2 port 61934 connected to 192.168.56.1 port 5201[ ID] Interval Transfer Bitrate Retr Cwnd[ 5] 0.00-1.00 sec 72.2 KBytes 591 Kbits/sec 3 23.6 KBytes[ 5] 1.00-2.00 sec 13.5 KBytes 110 Kbits/sec 5 37.0 KBytes[ 5] 2.00-3.00 sec 13.5 KBytes 110 Kbits/sec 5 50.5 KBytes[ 5] 3.00-4.00 sec 21.5 KBytes 176 Kbits/sec 5 64.0 KBytes[ 5] 4.00-5.00 sec 21.5 KBytes 176 Kbits/sec 5 77.4 KBytes[ 5] 5.00-6.00 sec 29.5 KBytes 241 Kbits/sec 5 90.9 KBytes[ 5] 6.00-7.00 sec 29.5 KBytes 241 Kbits/sec 5 104 KBytes[ 5] 7.00-8.00 sec 21.5 KBytes 176 Kbits/sec 5 118 KBytes[ 5] 8.00-9.00 sec 29.5 KBytes 241 Kbits/sec 5 131 KBytes[ 5] 9.00-10.00 sec 29.5 KBytes 241 Kbits/sec 5 145 KBytes- - - - - - - - - - - - - - - - - - - - - - - - -[ ID] Interval Transfer Bitrate Retr[ 5] 0.00-10.00 sec 281 KBytes 231 Kbits/sec 48 sender[ 5] 0.00-10.00 sec 129 KBytes 106 Kbits/sec receiveriperf Done.
root@OPNsense2:~ # ipfw pipe show10000: 11.500 Mbit/s 0 ms burst 0q141072 50 sl. 0 flows (1 buckets) sched 75536 weight 0 lmax 0 pri 0 droptail sched 75536 ty
root@OPNsense2:~ # iperf3 -c 192.168.56.1Connecting to host 192.168.56.1, port 5201[ 5] local 192.168.57.2 port 23220 connected to 192.168.56.1 port 5201[ ID] Interval Transfer Bitrate Retr Cwnd[ 5] 0.00-1.00 sec 99.2 KBytes 812 Kbits/sec 12 40.4 KBytes[ 5] 1.00-2.00 sec 45.7 KBytes 374 Kbits/sec 15 67.9 KBytes[ 5] 2.00-3.00 sec 55.0 KBytes 450 Kbits/sec 12 91.3 KBytes[ 5] 3.00-4.00 sec 95.2 KBytes 779 Kbits/sec 18 130 KBytes[ 5] 4.00-5.00 sec 113 KBytes 923 Kbits/sec 20 176 KBytes[ 5] 5.00-6.00 sec 71.1 KBytes 582 Kbits/sec 15 205 KBytes[ 5] 6.00-7.00 sec 52.5 KBytes 430 Kbits/sec 18 209 KBytes[ 5] 7.00-8.00 sec 48.5 KBytes 398 Kbits/sec 16 209 KBytes[ 5] 8.00-9.00 sec 39.1 KBytes 320 Kbits/sec 14 209 KBytes[ 5] 9.00-10.00 sec 33.7 KBytes 276 Kbits/sec 12 209 KBytes- - - - - - - - - - - - - - - - - - - - - - - - -[ ID] Interval Transfer Bitrate Retr[ 5] 0.00-10.00 sec 652 KBytes 534 Kbits/sec 152 sender[ 5] 0.00-10.00 sec 437 KBytes 358 Kbits/sec receiveriperf Done.
root@OPNsense2:~ # iperf3 -c 192.168.56.1Connecting to host 192.168.56.1, port 5201[ 5] local 192.168.57.2 port 54607 connected to 192.168.56.1 port 5201[ ID] Interval Transfer Bitrate Retr Cwnd[ 5] 0.00-1.00 sec 9.37 MBytes 78.5 Mbits/sec 140 70.2 KBytes[ 5] 1.00-2.00 sec 8.74 MBytes 73.0 Mbits/sec 29 61.9 KBytes[ 5] 2.00-3.00 sec 8.86 MBytes 74.6 Mbits/sec 38 78.9 KBytes[ 5] 3.00-4.00 sec 8.88 MBytes 74.5 Mbits/sec 41 67.4 KBytes[ 5] 4.00-5.00 sec 8.80 MBytes 73.7 Mbits/sec 19 67.2 KBytes[ 5] 5.00-6.00 sec 8.73 MBytes 73.2 Mbits/sec 27 47.5 KBytes[ 5] 6.00-7.00 sec 8.75 MBytes 73.5 Mbits/sec 12 84.3 KBytes[ 5] 7.00-8.00 sec 8.85 MBytes 74.2 Mbits/sec 43 70.2 KBytes[ 5] 8.00-9.00 sec 8.94 MBytes 74.9 Mbits/sec 27 56.2 KBytes[ 5] 9.00-10.00 sec 8.83 MBytes 74.2 Mbits/sec 50 63.2 KBytes- - - - - - - - - - - - - - - - - - - - - - - - -[ ID] Interval Transfer Bitrate Retr[ 5] 0.00-10.00 sec 88.7 MBytes 74.4 Mbits/sec 426 sender[ 5] 0.00-10.00 sec 88.6 MBytes 74.3 Mbits/sec receiver